8239933

Network Protecting Authentication Proxy

PublishedAugust 7, 2012
Assigneenot available in USPTO data we have
Technical Abstract

Patent Claims
17 claims

Legal claims defining the scope of protection, as filed with the USPTO.

1

1. A system comprising: an internal authentication system server communicatively and physically coupled with a first network; and an authentication front-end implemented on a machine communicatively and physically coupled to the first network and a second network, and the authentication front-end configured to: receive a security credentials from an external machine via the second network; query the internal authentication system via the first network to determine risk of lockout upon failure to authenticate the security credential; if no risk of lockout, forward the security credentials to the internal authentication system to attempt to authenticate the external machine; and if risk of lockout, return an authentication error to the external machine without forwarding the security credential to the internal authentication system.

2

2. The system of claim 1 , wherein the second network is the Internet.

3

3. The system of claim 1 , wherein the first network is an intranet.

4

4. The system of claim 1 , wherein the internal authentication system server is configured to provides Microsoft Active Directory type services to facilitate said querying the internal authentication system for risk of lockout.

5

5. The system of claim 1 , wherein said query further comprises a query of the internal authentication system for a number of invalid authentication attempts left before the security credential locks out.

6

6. An apparatus comprising: an interface configured to receive a security credential from an external machine; a processor communicatively and physically coupled to the interface and an internal authentication system; and an authentication front-end configured to be operated by the processor to: receive the security credential of the external machine from the interface; query the internal authentication system to determine risk of lockout upon failure to authenticate the security credential; if no risk of lockout, forward the security credential to the internal authentication system to attempt to authenticate the external machine; and if risk of lockout, return an authentication error to the external machine without forwarding the security credential to the internal authentication system.

7

7. The apparatus of claim 6 , wherein the interface is communicatively and physically coupled to the Internet.

8

8. The apparatus of claim 6 , wherein the authentication front-end and the internal authentication system are communicatively and physically coupled to an intranet.

9

9. The apparatus of claim 6 , wherein the authentication front-end is further configured to query the internal authentication system for a number of invalid authentication attempts left before the security credential locks out.

10

10. The apparatus of claim 6 , wherein the authentication front-end is further configured to receive a response from the internal authentication system for the said query.

11

11. The apparatus of claim 10 , wherein the authentication front-end is further configured to determine the risk of lockout based on the response from the internal authentication system.

12

12. A method comprising: receiving, by an interface communicatively and physically coupled to a first network, a security credential from an external machine via the first network; sending, by an authentication front-end operating on a machine communicatively and physically coupled to the interface and an internal authentication system, a query to the internal authentication system to determine risk of lockout upon failure to authenticate the security credential; if no risk of lockout, forwarding, by the authentication front-end, the security credential to the internal authentication system to attempt to authenticate the external machine; and if risk of lockout, returning, by the authentication front-end, an authentication error to the external machine without forwarding the security credential to the internal authentication system.

13

13. The method of claim 12 , wherein the first network is the Internet.

14

14. The method of claim 12 , wherein the internal authentication system is communicatively and physically coupled to an intranet.

15

15. The method of claim 12 , wherein said query comprises, a query of the internal authentication system for a number of invalid authentication attempts left before the security credential locks out.

16

16. The method of claim 12 , further comprising receiving, by the authentication front-end, a response from the internal authentication system for said query.

17

17. The method of claim 16 , wherein said determine further comprises determine the risk of lockout based on the response from the internal authentication system.

Patent Metadata

Filing Date

Unknown

Publication Date

August 7, 2012

Inventors

Steven L. Grobman

Want to explore more patents?

Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.

Citation & reuse

Analysis on this page is generated by Patentable — an AI-powered patent intelligence platform. AI-generated summaries, explanations, and analysis may be reused with attribution and a visible link back to the canonical URL below. Patent abstracts and claims are USPTO public domain.

Cite as: Patentable. “NETWORK PROTECTING AUTHENTICATION PROXY” (8239933). https://patentable.app/patents/8239933

© 2026 Patentable. All rights reserved.

Patentable is a research and drafting-assistant tool, not a law firm, and does not provide legal advice. Documents we generate are drafts for review by a licensed patent attorney.